VDB

GO-2025-4107

GO-2025-4107 PUBLISHED

KubeVirt Improper TLS Certificate Management Handling Allows API Identity Spoofing in kubevirt.io/kubevirt

Affected Products

VendorProductVersions
kubevirt.iokubevirt1.6.0-alpha.0, 1.6.0-rc.0, 0

Timeline

  • Nov 17, 2025 CVE Published
  • Mar 25, 2026 CVE Updated
  • May 1, 2026 Security Advisory
Open in Interactive Console →
$ Console Community · 100/wk Open console ›